WordPress Plugin Vulnerabilities
Helios Solutions Brand Logo Slider <= 2.1 - Authenticated Arbitrary File Upload
Description
An Authenticated user (admin+) can bypass the security check of the plugin and upload arbitrary files via the Brand Logo.
Proof of Concept
Affects Plugins
References
Exploitdb
Miscellaneous
Original Researcher
Net-Hunter
Verified
Yes
WPVDB ID
Timeline
Publicly Published
2020-10-21 (about 5 years ago)
Added
2020-10-21 (about 5 years ago)
Last Updated
2020-11-03 (about 5 years ago)